First published: Tue Feb 01 2022(Updated: )
NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.6.0.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
radare2 | <5.6.0 | |
Red Hat Fedora | =34 | |
Red Hat Fedora | =35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-0419 is classified as a null pointer dereference vulnerability which can lead to potential application crashes.
To fix CVE-2022-0419, users should upgrade to radare2 version 5.6.0 or later.
CVE-2022-0419 affects radare2 versions prior to 5.6.0 and specific versions of Fedora including 34 and 35.
CVE-2022-0419 requires local access to exploit, making it less of a threat for remote attacks.
If you are using an affected version of radare2, it is recommended to immediately update to the latest version to mitigate the vulnerability.